VCDDaemon.exe

Virtual CloneDrive

Elaborate Bytes AG

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘VirtualCloneDrive’.
Publisher:
Elaborate Bytes AG  (signed and verified)

Product:
Virtual CloneDrive

Description:
Virtual CloneDrive Daemon

Version:
5, 4, 0, 1

MD5:
84fd023dc586d68781ad3e05da108707

SHA-1:
a1f0bc30aff40865c7dd8a1e5cc68f6c8bd2fea3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:56:37 PM UTC  (a few moments ago)

File size:
225.5 KB (230,880 bytes)

Product version:
5, 4, 0, 0

Copyright:
Copyright © 2001 - 2008 Elaborate Bytes AG

Trademarks:
elby, CloneCD, CloneDVD and Elaborate Bytes are trademarks of Elaborate Bytes AG

Original file name:
VCDDaemon.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\elaborate bytes\virtualclonedrive\vcddaemon.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/7/2006 12:07:29 PM

Valid to:
12/7/2008 12:07:29 PM

Subject:
E=admin@elby.ch, CN=Elaborate Bytes AG, O=Elaborate Bytes AG, C=CH

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000010F5C98B8F5

File PE Metadata
Compilation timestamp:
6/30/2008 12:00:59 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
3072:Y04kszZk+TlUt5ebJNe0fPY9KL0VVzQ11oAIVYcgIqEgvnVbPEsIaTWJr6Hhgja4:Y04za+q5ejeoA9KezQHcg73VTV4JrC6h

Entry address:
0xB000

Entry point:
90, 90, B9, CE, 47, 99, 00, 90, 90, 68, 26, B0, 40, 00, 5F, 68, 98, 05, 00, 00, 5E, 90, FF, 34, 3E, 31, 0C, 24, 8F, 04, 3E, 90, 90, 83, EE, 02, 83, EE, 02, 75, ED, 90, 26, 3A, 98, 00, CE, 47, 99, 00, CE, 47, D9, 00, 20, 76, 99, 00, 06, 8C, 99, 00, 2E, 92, 99, 00, CE, F7, 9B, 00, CF, 47, 99, 00, 96, 37, D9, 00, D8, C2, D9, 00, EC, C2, D9, 00, 8E, C5, 99, 00, DA, C2, 99, 00, EE, C2, 99, 00, 96, 37, 99, 00, DA, C2, 99, 00, EE, C2, 99, 00, CE, 47, 99, 00, CE, 47, 99, 00, CE, 47, 99, 00, CE, 47, 99, 00, CE, 47...
 
[+]

Code size:
24 KB (24,576 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
VirtualCloneDrive

Command:
"C:\Program Files\elaborate bytes\virtualclonedrive\vcddaemon.exe" \s


Scan VCDDaemon.exe - Powered by Reason Core Security